EasyManua.ls Logo

Grandstream Networks UCM6206 - Server and Email Configurations

Grandstream Networks UCM6206
337 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
P a g e | 69
UCM6200 Series User Manual
Figure 41: Configure Dynamic Defense
Fail2ban
Fail2Ban feature on the UCM6200 provides intrusion detection and prevention for authentication errors in SIP
REGISTER, INVITE and SUBSCRIBE. Once the entry is detected within "Max Retry Duration", the UCM6200
will take action to forbid the host for certain period as defined in "Banned Duration". This feature helps prevent
SIP brute force attacks to the PBX system.
Table 18: Fail2Ban Settings
Global Settings
Enable Fail2Ban
Enable Fail2Ban. The default setting is disabled. Please make sure both "Enable
Fail2Ban" and "Asterisk Service" are turned on in order to use Fail2Ban for SIP
authentication on the UCM6200.
Banned Duration
Configure the duration (in seconds) for the detected host to be banned. The default
setting is 300. If set to -1, the host will be always banned.
Max Retry Duration
Within this duration (in seconds), if a host exceeds the max times of retry as
defined in "MaxRetry", the host will be banned. The default setting is 5.
MaxRetry
Configure the number of authentication failures during "Max Retry Duration" before
the host is banned. The default setting is 10.
Fail2Ban Whitelist
Configure IP address, CIDR mask or DNS host in the whitelist. Fail2Ban will not
ban the host with matching address in this list. Up to 5 addresses can be added
into the list.
Local Settings
Asterisk Service
Enable Asterisk service for Fail2Ban. The default setting is disabled. Please make
sure both "Enable Fail2Ban" and "Asterisk Service" are turned on in order to use
Fail2Ban for SIP authentication on the UCM6200.
Protocol
Configure the listening port number for the service. Currently only 5060 (for UDP)

Table of Contents

Related product manuals